Back to Glossary
Finding
A finding is a specific vulnerability, misconfiguration, or control gap identified during a security scan or review. Findings are the granular building blocks of risk assessments, typically categorized by severity and mapped to remediation guidance. In the Black Kite platform, a Finding is a specific cybersecurity control item or vulnerability identified during scanning and monitoring, categorized and assessed for impact, severity, and output status (passed or failed), typically scored using industry standards like the Common Weakness Scoring System (CWSS) or Common Vulnerability Scoring System (CVSS).